Security Advisory
CVE-2019-10791
9.8
CRITICAL
Vulnerability Description
promise-probe before 0.10.0 allows remote attackers to perform a command injection attack. The file, outputFile and options functions can be controlled by users without any sanitization.
Published Date
February 18, 2020
Official Source
NIST NVD Advisory